Browse Security Advisories
Moderate Security Advisories for actionpack Clear Filters
Moderate
12 months ago
Possible ReDoS vulnerability in HTTP Token authentication in Action Controller
rubygems
actionpack
Moderate
12 months ago
Possible ReDoS vulnerability in query parameter filtering in Action Dispatch
rubygems
actionpack
Moderate
over 1 year ago
Missing security headers in Action Pack on non-HTML responses
rubygems
actionpack
Moderate
over 1 year ago
Rails has possible XSS Vulnerability in Action Controller
rubygems
actionpack
Moderate
over 2 years ago
Actionpack has possible cross-site scripting vulnerability via User Supplied Values to redirect_to
rubygems
actionpack
Moderate
almost 4 years ago
actionpack Open Redirect in Host Authorization Middleware
rubygems
actionpack
Moderate
over 5 years ago
Untrusted users can run pending migrations in production in Rails
rubygems
actionpack
Moderate
almost 8 years ago
rails Cross-site Scripting vulnerability
rubygems
activesupport, actionpack
Moderate
almost 8 years ago
Cross-site Scripting vulnerability in i18n translations helper method
rubygems
actionpack
Moderate
almost 8 years ago
Cross site scripting that affects rails
rubygems
activesupport, actionpack
Moderate
almost 8 years ago
actionpack allows remote attackers to bypass database-query restrictions, perform NULL checks via crafted request
rubygems
actionpack
Moderate
almost 8 years ago
Rails actionpack gem vulnerable to Cross-site Scripting
rubygems
actionpack
Moderate
almost 8 years ago
actionpack and activesupport vulnerable to information leaks
rubygems
activesupport, actionpack
Moderate
almost 8 years ago
Action Pack contains database-query restrictions bypass
rubygems
actionpack
Moderate
almost 8 years ago
actionpack allows bypass of database-query restrictions
rubygems
actionpack
Filter by Severity
Filter by Ecosystem
maven
3,241
packagist
2,958
pypi
2,035
npm
1,380
go
1,299
nuget
472
cargo
419
rubygems
419
hex
16
swift
11
actions
8
pub
2
Filter by Package
moodle/moodle
307
tensorflow
200
tensorflow-cpu
191
tensorflow-gpu
187
magento/community-edition
151
org.jenkins-ci.main:jenkins-core
148
typo3/cms
125
com.liferay.portal:release.portal.bom
104
org.apache.tomcat:tomcat
90
pimcore/pimcore
87
github.com/mattermost/mattermost/server/v8
83
com.liferay.portal:release.dxp.bom
80
microweber/microweber
72
typo3/cms-core
70
silverstripe/framework
66
phpmyadmin/phpmyadmin
56
dolibarr/dolibarr
55
drupal/core
51
github.com/usememos/memos
50
magento/project-community-edition
49
thorsten/phpmyfaq
47
concrete5/concrete5
46
apache-superset
45
actionpack
45
Django
44
apache-airflow
44
librenms/librenms
43
drupal/drupal
39
Plone
35
picklescan
34
showdoc/showdoc
34
mantisbt/mantisbt
33
org.elasticsearch:elasticsearch
33
org.keycloak:keycloak-core
32
craftcms/cms
31
github.com/grafana/grafana
31
symfony/symfony
30
nova
29
github.com/mattermost/mattermost-server/v6
29
github.com/mattermost/mattermost-server
28
moin
27
snipe/snipe-it
27
intelliants/subrion
27
mautic/core
27
baserproject/basercms
26
ansible
25
k8s.io/kubernetes
24
shopware/platform
23
directus
22
org.keycloak:keycloak-services
21
github.com/hashicorp/vault
21
nilsteampassnet/teampass
21
github.com/answerdev/answer
21
gradio
20
froxlor/froxlor
20
grumpydictator/firefly-iii
20
mediawiki/core
20
shopware/shopware
19
github.com/cilium/cilium
19
org.apache.struts:struts2-core
19
matrix-synapse
19
plone
18
remdex/livehelperchat
18
github.com/argoproj/argo-cd/v2
17
contao/core-bundle
17
shopware/core
17
getkirby/cms
17
DotNetNuke.Core
17
salt
17
github.com/docker/docker
16
rdiffweb
16
zendframework/zendframework1
16
prestashop/prestashop
16
org.opencms:opencms-core
15
org.apache.jspwiki:jspwiki-main
15
vyper
15
github.com/hashicorp/nomad
15
rack
15
io.undertow:undertow-core
15
yetiforce/yetiforce-crm
15
tinymce
14
org.apache.tomcat.embed:tomcat-embed-core
14
django
14
org.xwiki.platform:xwiki-platform-oldcore
14
github.com/hashicorp/consul
14
glance
14
puppet
14
github.com/openfga/openfga
13
typo3/cms-backend
13
github.com/goharbor/harbor
13
nokogiri
13
com.jfinal:jfinal
13
tribalsystems/zenario
13
keystone
13
com.thoughtworks.xstream:xstream
13
forkcms/forkcms
13
wallabag/wallabag
12
roundup
12
org.springframework.security:spring-security-core
12
simplesamlphp/simplesamlphp
12
transformers
12
helm.sh/helm/v3
12
next
12
lavalite/cms
11
org.bouncycastle:bcprov-jdk15on
11
activesupport
11
ghost
11
TinyMCE
11
getgrav/grav
11
bootstrap
11
feehi/feehicms
11
genix/cms
11
org.eclipse.jetty:jetty-server
11
github.com/containerd/containerd
11
ec-cube/ec-cube
11
github.com/traefik/traefik/v2
11
@openzeppelin/contracts
11
@openzeppelin/contracts-upgradeable
11
github.com/argoproj/argo-cd
11
tinymce/tinymce
11
opencart/opencart
10
electron
10
bolt/bolt
10
surrealdb
10
org.apache.nifi:nifi
10
joplin
10
silverstripe/cms
10
org.apache.jspwiki:jspwiki-war
10
vite
10
github.com/ethereum/go-ethereum
10
francoisjacquet/rosariosis
10
vllm
10
laravel/framework
10
com.vaadin:vaadin-bom
10
org.apache.solr:solr-core
10
com.liferay.portal:com.liferay.portal.impl
10
org.keycloak:keycloak-parent
10
PaddlePaddle
10
org.springframework:spring-core
10
notebook
10
aiohttp
10
zendframework/zendframework
10
fat_free_crm
10
OctoPrint
10
ckeditor4
10
github.com/greenpau/caddy-security
10
publify_core
9
org.apache.tomcat:tomcat-coyote
9
org.jenkins-ci.plugins:git
9
pyftpdlib
9
gogs.io/gogs
9
calibreweb
9
contao/contao
9
rubygems-update
9
org.apache.activemq:activemq-client
9
urllib3
9
org.mortbay.jetty:jetty
9
pimcore/admin-ui-classic-bundle
9
open-webui
9
github.com/rancher/rancher
9
phpoffice/phpspreadsheet
9
org.jenkins-ci.plugins:script-security
9
wasmtime
9
org.opencrx:opencrx-core-models
9
org.igniterealtime.openfire:parent
9
cakephp/cakephp
9
angular
9
code.gitea.io/gitea
9
horizon
9
opencv-contrib-python
8
github.com/kubeedge/kubeedge
8
onionshare-cli
8
impresscms/impresscms
8
mlflow
8
neutron
8
opencv-python
8
Microsoft.ChakraCore
8
rails-html-sanitizer
8
org.opensearch.plugin:opensearch-security
8
org.apache.tomcat:tomcat-catalina
8
org.jenkins-ci.plugins:electricflow
8
camaleon_cms
8
activerecord
8
org.apache.ranger:ranger
8
org.apache.archiva:archiva
8
github.com/mattermost/mattermost-plugin-confluence
8
alextselegidis/easyappointments
8
parse-server
8
phpmyfaq/phpmyfaq
8
modoboa
8
editor.md
8
centreon/centreon
8
sulu/sulu
8
phpbb/phpbb
8
sylius/sylius
8
org.jenkins-ci.plugins:subversion
8
pyload-ng
8
github.com/cri-o/cri-o
8
admidio/admidio
7
org.apache.santuario:xmlsec
7